GEN002980 - The cron.allow file must have mode 0600 or less permissive.

Information

A readable and/or writable cron.allow file by users other than root could allow potential intruders and malicious users to use the file contents to help discern information, such as who is allowed to execute cron programs, which could be harmful to overall system and network security.

Solution

Change the mode of the cron.allow file to 0600.

Procedure:
# chmod 0600 /etc/cron.allow

See Also

http://iasecontent.disa.mil/stigs/zip/U_RedHat_5_V1R18_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6, CAT|II, CCI|CCI-000225, Group-ID|V-975, Rule-ID|SV-27326r1_rule, STIG-ID|GEN002980, Vuln-ID|V-975

Plugin: Unix

Control ID: 12aa268de0dacad0ec2d12d3b1e6f76c0b59295f4eafc5094a33ff9f1ff6e52a